I hope Elon musk gets cancelled(cancer) for this useless nonsensical black box
Hey y'all. Reminder not to trust a platform owned and operated by a Nazi manchild.
Shouldn't trust it yet.
Or ever.
XChat, has some red flags.
With a white circle and a swastika inside?
Probably shouldn't? How 'bout definitely shouldn't, ditto for Twitter in general. Give ATproto shit all you want but at least you can move to an independent PDS with it.
Granted ActivityPub is still ideal over ATproto, but both are better than a centralized black box.
TL;dr of the article :
- They keep your private key on their servers.
- Their implementation allows for AITM attacks.
- It's closed source.
- There's no perfect forward secrecy.
This secret stays between you, me, and Elon.
I hope politicians use the hell out of it, so we can see what they really think when it gets (inevitably) hacked in a few weeks.
They keep your private key on their servers.
Then it's literally not even E2EE, lol
What is the "A" in "AITM"?
This is the first time I heard of AITM, thought it was a new name for MITM:
Are you sure that site is trustworthy? It kinda reads like an LLM being told to explain the difference between two names for the same thing and basically rephrasing the same thing. I'd imagine it might just be a different name to get rid of a male-coded word.
Adversary
It’s just MITM but with extra steps
Ah yes, Malcolm in the Middle is behind this all along.
Agencies
Asshole
Anal
Anyone
Aliens
is it different with signal, telegram, whatsapp?
If you trust ANYTHING Musk has for you well then have I got a bridge to sell you.
offering me end-to-end encrypted chat
No one - not even X - can access or read your messages
This key is then stored on X’s servers
So...they're just blatantly lying?
It's encrypted with a 4 digit pin so they'll have to spend at least 316.8809e-10 years on brute-forcing it.
That's why my PIN is 5 digits: 12345
One. Two. Three. Four. Five?
That's amazing. I've got the same combination on my luggage.
"xchat" sounds like one of those porn chat rooms
"The guy who helped install Donald Trump, did a Nazi Salute at Trump's victory parade on live TV, supports authoritarians, and who has declared war on transgender people to the point you're not allowed to say "Cis" or "Cisgender" on his platform, has created an end to end encrypted chat."
All of this has the same vibes as the time Brigham Young University amended their code of conduct to allow people to come out as queer, let some students come out, and then changed the CoC back and expelled the students.
Yet? More like never.
Brain damaged people trust x again.
~~shouldn't trust it yet~~ shouldn't trust it ever
...yet? How bout just not trusting it at all?
Hah, beat me by 17 seconds!
How about: "You probably should trust or use X at all... ever."
YET?
Why are people evening using this site anymore? It’s been severely compromised.
That "yet" is the narrative hook to trick us into feeling like it will soon be trustworthy, and that our assumed suspicions refer to a temporary state of untrustworthiness. Clever girls!
I don't trust anything coming out of Elon's fascisthole. Deleted the app when he bought it and never looked back.
I refuse to even click on links. If a friend sends me an X link to something funny/interesting I tell them "I don't click on Nazi links" and ask them to find me another source.
Signal and encrypted email only.
Friends and I swapped our group chat to Signal the day Trump was inaugurated...the first time.
If things keep going the way they are, no one should be communicating on anything but encrypted messaging apps.
Yet? What kind of idiot would imagine that X would or could provide actual secure communication?
I wouldnt trust X with a picture of my shoes
It’s like a regular encrypted chat but with peepholes and racism.
Our good friend Elon cannot be trusted? I don't believe you, this must be propaganda to discredit his good manners.
I trust it but there is a major misunderstanding of end to end encryption. Some implementations the platform holder does not have a key to decrypt data but it is far from a requirement. All end to end means is there's a blocker preventing the network from seeing what you send not twitter who im assuming has a copy of the key.
That is NOT end to end encryption. That is transport layer encryption. So basically SSL
End to end is from sender to recipient. No one in the middle should be able to read anything
Quick everyone, install this just so that if Pete Hegseth invites people to the next airstrikes chat group, your satirical JD Vance account will be next to the real JD Vance's account and he'll probably add you both and figure it out later.
Or ever.
Technology
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related news or articles.
- Be excellent to each other!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
- Check for duplicates before posting, duplicates may be removed
- Accounts 7 days and younger will have their posts automatically removed.